🇺🇸
TPI-Abuse
2026-09-07 20:14:22
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 185.218.86.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 185.218.86.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:14:18.628195 2026] [security2:error] [pid 23918:tid 23918] [client 185.218.86.8:17012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "1826palmetto.com"] [uri "/.env.production.local"] [unique_id "ap8bGs6dYHNRJ2FrYwDOQAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-07 19:42:40
(2 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:24:18
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 185.218.86.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 185.218.86.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:24:14.776554 2026] [security2:error] [pid 32082:tid 32082] [client 185.218.86.8:17186] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "15tobefit.com"] [uri "/.env"] [unique_id "ap8PXsYgc70-RTICSE14BAAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-07 19:00:14
(2 hours ago)
Excessive 404/403 errors
Brute-Force
🇫🇷
masterguru
2026-09-07 15:08:45
(6 hours ago)
Restricted File Access Attempt. Matched phrase ".kube/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
🇳🇱
wolfemium
2026-09-06 19:44:37
(1 day ago)
185.218.86.8 - - [06/Sep/2026:22:44:35 +0300] "GET /.env.php HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Mac ...
show more
185.218.86.8 - - [06/Sep/2026:22:44:35 +0300] "GET /.env.php HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36"
185.218.86.8 - - [06/Sep/2026:22:44:35 +0300] "GET /env.php HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36 Edg/136.0.0.0"
185.218.86.8 - - [06/Sep/2026:22:44:36 +0300] "GET /wp-config.php HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36"
185.218.86.8 - - [06/Sep/2026:22:44:36 +0300] "GET /wp-config.php.bak HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36"
185.218.86.8 - - [06/Sep/2026:22:44:36 +0300] "GET /wp-config.php.backup HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gec
...
show less
DDoS Attack
Anonymous
2026-09-06 18:05:12
(1 day ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
🇫🇷
Feelautom
2026-09-06 14:21:13
(1 day ago)
[FeelAutom Auto-Ban] PathScan: /.env.copy (Score: 206)
Port Scan
🇺🇸
TPI-Abuse
2026-09-06 07:02:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 185.218.86.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 185.218.86.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 03:01:54.218529 2026] [security2:error] [pid 14075:tid 14075] [client 185.218.86.8:36174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taafe.xyz"] [uri "/.env"] [unique_id "ap0P4sZPVQIfARfGxOVMzAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 03:27:57
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇬🇧
consul.to
2026-09-06 03:15:51
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇩🇪
hidemail.app
2026-09-06 00:24:20
(1 day ago)
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto ...
show more
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto-banned by fail2ban.
show less
Web App Attack
Hacking
🇮🇹
VHosting
2026-09-05 23:15:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-09-05 21:01:51
(2 days ago)
Excessive 404/403 errors
Brute-Force
🇬🇧
relianoid.com
2026-09-05 17:48:08
(2 days ago)
404 Errors Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web App Attack